LG WebOS TV security update advisory

Overview

 

LG has released a security update to address a vulnerability in LG WebOS TVs. users of affected products are advised to update to the latest version.

 

Affected Products

 

Cve-2023-6317, cve-2023-6319

  • LG43UM7000PLA webOS 4.9.7 (05.30.40) version
  • OLED55CXPUA webOS 5.5.0 (04.50.51) version
  • OLED48C1PUB webOS 6.3.3-442 (03.36.50) version
  • OLED55A23LA webOS 7.3.1-43 (03.33.85) version

 

CVE-2023-6318

  • OLED55CXPUA webOS 5.5.0 (04.50.51) version
  • OLED48C1PUB webOS 6.3.3-442 (03.36.50) version
  • OLED55A23LA webOS 7.3.1-43 (03.33.85) version

 

CVE-2023-6320

  • OLED55CXPUA webOS 5.5.0 (04.50.51) version
  • OLED48C1PUB webOS 6.3.3-442 (03.36.50) version

 

Resolved Vulnerabilities

 

Root access gain via bypass of authentication mechanism in LG WebOS TVs (CVE-2023-6317)

 

Vulnerability Patches

 

vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites[1] to update to the latest Vulnerability Patches version.

 

Referenced Sites

 

[1] Vulnerabilities Identified in LG WebOS

https://www.bitdefender.com/blog/labs/vulnerabilities-identified-in-lg-webos/

[2] https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-6317

[3] https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-6318

[4] https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-6319

[5] https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-6320